Skip to main content

Help with spam sent to self

Comments

7 comments

  • cPanelMichael
    Hello :) Could you post the corresponding entry for this message from /var/log/exim_mainlog? EX:
    exigrep MSGID /var/log/exim_mainlog
    Thank you.
    0
  • calvinphanctt
    Hello, I got the same problem ! Someone uses my email to email me, for example: From: myemail@example.com to: myemail@example.com with an advertisement like below: - Removed - Please show me how to fix this problem ! Thank you very much ! Sincerely, Calvin
    0
  • phillbooth
    Hello :) Could you post the corresponding entry for this message from /var/log/exim_mainlog? EX:
    exigrep MSGID /var/log/exim_mainlog
    Thank you.

    Thanks
    exigrep 578251831008526853087067 /var/log/exim_mainlog 2016-04-05 14:11:15 1anQlG-0004qD-LD H=([181.176.43.44]) [181.176.43.44]:23075 Warning: Message has been scanned: no virus or other harmful content was found 2016-04-05 14:11:15 1anQlG-0004qD-LD <= admin@myhosteddomain H=([181.176.43.44]) [181.176.43.44]:23075 P=esmtp S=3362 id=578251831008526853087067@myhosteddomain T="Make 30% profit every 15 minutes." for admin@myhosteddomain 2016-04-05 14:11:15 1anQlG-0004qD-LD SMTP connection identification D=myhosteddomain O=admin@myhosteddomain E=phill@myemail.com M=1anQlG-0004qD-LD U=alternat ID=1000 B=redirect_resolver 2016-04-05 14:11:15 1anQlG-0004qD-LD => phill (phill@myemail.com, admin@myhosteddomain) R=virtual_user T=virtual_userdelivery 2016-04-05 14:11:15 1anQlG-0004qD-LD => |/usr/local/cpanel/bin/autorespond phill@myemail.com /home/runtime/.autorespond (phill@myemail.com, phill@myemail.com, admin@myhosteddomain) SRS= R=virtual_aliases_nostar T=jailed_virtual_address_pipe 2016-04-05 14:11:15 1anQlG-0004qD-LD Completed
    0
  • cPanelMichael
    Please browse to "WHM >> Service Configuration >> Exim Configuration Manager >> Basic Editor" and verify the following option is enabled: "Reject SPF failures" Thank you.
    0
  • phillbooth
    Please browse to "WHM >> Service Configuration >> Exim Configuration Manager >> Basic Editor" and verify the following option is enabled: "Reject SPF failures" Thank you.

    Hello, yes this is switched on.
    0
  • phillbooth
    I have noticed that these are coming in on the catch-all / Default Address looking at all the effected accounts
    0
  • cPanelMichael
    Could you open a support ticket using the link in my signature so we can take a closer look? You can post the ticket number here so we can update this thread with the outcome. Thank you.
    0

Please sign in to leave a comment.